<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://cve.autoarticles.net/cve/CVE-2026-84869</loc>
    <news:news>
      <news:publication>
        <news:name>脆弱性対応ウォッチ</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-13T18:38:12+09:00</news:publication_date>
      <news:title>CVE-2026-84869 ConnectWise ScreenConnect のクライアント側で、遠隔セッション中に許可なくファイルを転送・実行できる（KEV・CVSS 9.9・是正期限 2026-09-14）</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://cve.autoarticles.net/cve/CVE-2026-42016</loc>
    <news:news>
      <news:publication>
        <news:name>脆弱性対応ウォッチ</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-13T18:38:12+09:00</news:publication_date>
      <news:title>CVE-2026-42016 JFrog Artifactory（自己ホスト）のトークン検証がスコープを見ておらず権限昇格（KEV・CVSS 8.8・是正期限 2026-09-25）</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://cve.autoarticles.net/cve/CVE-2026-42018</loc>
    <news:news>
      <news:publication>
        <news:name>脆弱性対応ウォッチ</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-13T18:38:12+09:00</news:publication_date>
      <news:title>CVE-2026-42018 JFrog Artifactory が匿名アクセス無効時に内部の匿名利用者トークンを未認証の呼び出し元へ返す（KEV・CVSS 7.5・是正期限 2026-09-25）</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://cve.autoarticles.net/cve/CVE-2026-77070</loc>
    <news:news>
      <news:publication>
        <news:name>脆弱性対応ウォッチ</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-12T18:33:39+09:00</news:publication_date>
      <news:title>CVE-2026-77070 n8n の MongoDB ノードに NoSQL インジェクション、コレクション全件の漏洩と全削除が起きうる（CVSS 9.8）</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://cve.autoarticles.net/cve/CVE-2026-73373</loc>
    <news:news>
      <news:publication>
        <news:name>脆弱性対応ウォッチ</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-12T18:33:39+09:00</news:publication_date>
      <news:title>CVE-2026-73373 Joomla の危険な拡張子リストに SHTML が無く、アップロードからコード実行に至りうる（CVSS 9.8）</news:title>
    </news:news>
  </url>
</urlset>